A network abnormal traffic detection method based on the combination of snmp and netflow
A traffic detection and network anomaly technology, applied in data exchange networks, digital transmission systems, electrical components, etc., can solve the problems of high false alarm rate and small data capacity of SNMP detection technology, so as to reduce the false alarm rate and reduce computing overhead. , to ensure the correctness of the effect
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment Construction
[0044] The principles and features of the present invention will be described below in conjunction with the accompanying drawings.
[0045] The invention provides a network abnormal traffic detection method based on the combination of NetFlow and SNMP, which is used for network traffic abnormal detection. The method includes two processes: NetFlow data collection and processing process and SNMP abnormal analysis process.
[0046] 1. NetFlow data collection and processing process
[0047] The specific process of NetFlow data collection and processing is as follows:
[0048] 1) The network switching equipment collects NetFlow data and stores them in the NetFlow database;
[0049] 2) The NetFlow database adopts the NetFlow preprocessing method. After data selection, filling of default values, data normalization and data classification, the original data is sorted into standardized data and divided into multiple data tables, which are stored in the preprocessing database;
[0050]...
PUM
Login to View More Abstract
Description
Claims
Application Information
Login to View More 


